Record summary

CVE-2008-4610 has a selected CVSS score of 5.0; EIP currently links 2 catalogued exploits.

Description

MPlayer allows remote attackers to cause a denial of service (application crash) via (1) a malformed AAC file, as demonstrated by lol-vlc.aac; or (2) a malformed Ogg Media (OGM) file, as demonstrated by lol-ffplay.ogm, different vectors than CVE-2007-6718.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
2

Proofs of concept

2

Catalogued exploits

ExploitDBMPlayer - '.AAC' File Handling Denial of ServiceExploitDB exploitby Hanno BockNot analyzed1 file
ExploitDB

PoC details
ExploitDBMPlayer - '.OGM' File Handling Denial of ServiceExploitDB exploitby Hanno BockNot analyzed1 file
ExploitDB

PoC details

References

4